Endpoint Protection

 View Only
  • 1.  virus definitions will not update

    Posted Nov 30, 2017 01:55 PM

    We have a test computer that has Windows XP and I updated SEP to version 12. The test machine was put behind the firewall that the lab computers are behind. I ran the SEPXMLUpdate and SEP is showing connected to the correct server but the virus definitions will not update. I have included the contents of SEPXMLUpdate log file with this email. Thank you for any assistance you can provide.

     

    __________________________________________________________________________

    ***  Installation Started 11/29/2017 15:05  ***
    Title: SEPXMLUpdate-V1.0-EN-R1-PKG
    Source: F:\SEPXMLUpdate\V1.0\EN\R1-PKG\SEPXMLUpdate-V1.0-EN-R1-PKG.EXE
    * 11/29/17 15:05:11 Computer role: WKS
    * 11/29/17 15:05:11 Command line: 
    * 11/29/17 15:05:11 Command line is null: Defaulting to /EMBEDDED: /EMBEDDED
    * Script is running as: s20bswadm  
    *:  Admin Rights Detected.
    COMPNAM : CN=SWTD211158,OU=SAW COMPUTERS,OU=US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM
    : PARSE0:  SAW COMPUTERS,OU=US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM
    : PARSE1:  SAW COMPUTERS.US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM
    : PARSE2:  SAW COMPUTERS.US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM.
    : PARSE3:  SAW COMPUTERS.US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM..
    : PARSE4:  SAW COMPUTERS.US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM...
    : PARSE5:  SAW COMPUTERS.US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM....
    : PARSE6:  SAW COMPUTERS.US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM.....
    : PARSE7:  SAW COMPUTERS.US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM......
    : PARSE8:  SAW COMPUTERS.US SWIFTWATER,DC=PASTEUR,DC=AVENTIS,DC=COM.......
    : PARSEFINAL:  SAW COMPUTERS.US SWIFTWATER
    : PARSEMACHINEDOMAIN:  PASTEUR,DC=AVENTIS,DC=COM.......
    : PARSEMACHINEDOMAIN:  PASTEUR.AVENTIS,DC=COM.......
    : PARSEMACHINEDOMAIN:  PASTEUR.AVENTIS.COM.......
    : PARSEMACHINEDOMAIN:  PASTEUR.AVENTIS.COM........
    : PARSEMACHINEDOMAIN:  PASTEUR.AVENTIS.COM.........
    : PARSEMACHINEDOMAIN:  PASTEUR.AVENTIS.COM..........
    : PARSEMACHINEDOMAIN:  PASTEUR.AVENTIS.COM...........
    : PARSEMACHINEDOMAIN:  PASTEUR.AVENTIS.COM............
    : Machine Domain:  PASTEUR.AVENTIS.COM
    : Domain Specific Directory found at  F:\SEPXMLUpdate\V1.0\EN\R1-PKG\Content\PASTEUR.AVENTIS.COM-  Using those files...
    * 11/29/17 15:05:11  Matched: Computers.US*=AMER\United States\Workstations
    * 11/29/17 15:05:11 Set OURESULT:  AMER\United States\Workstations
    * 11/29/17 15:05:11  Override: NONE  Domain: AMER  XMLFILE: AMER_sylink.xml
    * 11/29/17 15:05:11 ************* Starting Installation ***********
    * 11/29/17 15:05:11 Replacing End Point Server for Symantec Antivirus software
    * 11/29/17 15:05:11 NO HWID CLEANUP Requested.   Specify "DOHWIDCLEANUP" on the command line to generate a fresh HWID.
    * 11/29/17 15:05:11  TEMP: C:\DOCUME~1\S20BSW~1\LOCALS~1\Temp  Copied Source XML file to TEMP.
    * 11/29/17 15:05:11 F:\SEPXMLUpdate\V1.0\EN\R1-PKG\Content\PASTEUR.AVENTIS.COM\AMER_sylink.xml located in the content directory.
    File Overwrite: C:\SMSLogs\SyLink.xml
    * 11/29/17 15:05:12 Symantec Product Version is:  12.1.7266.6800
    * 11/29/17 15:05:12 Using Client SylinkDrop.exe at:  C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.7266.6800.105\Bin\\SylinkDrop.exe
    * 11/29/17 15:05:12   Starting F:\SEPXMLUpdate\V1.0\EN\R1-PKG\MEDIA\PSEXEC.exe -s -i /accepteula "C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.7266.6800.105\Bin\\SylinkDrop.exe" -silent "C:\SMSLOGS\SyLink.XML"
    * 11/29/17 15:05:14   C:\Program Files\Symantec\Symantec Endpoint Protection\12.1.7266.6800.105\Bin\\SylinkDrop.exe Ended with  RC 0
    * Sylink.XML found here: C:\Documents and Settings\All Users\Application data\Symantec\Symantec Endpoint Protection\CurrentVersion\Data\Config\SYLINK.XML
    *  Sylink.XML date: 11/29/17 14:59:12
    * CurrentGroup: My Company\United States\Workstations
    * CurrentMode: 1
    *  COMSTAT: 1511985560:XSPW10B468K.pharma.aventis.com:8014:1511985560:XSPW10B468K.pharma.aventis.com:8014:0:0:
    * 11/29/17 15:05:15   ********** Install successfully completed at 11/29/17 15:05:15
    User Rights: Admin

    ____________________________________________________________________________



  • 2.  RE: virus definitions will not update

    Posted Nov 30, 2017 06:22 PM

    Please download and run the SymDiag tool for initial error checking:

    http://www.symantec.com/docs/TECH170752



  • 3.  RE: virus definitions will not update

    Posted Dec 07, 2017 03:13 PM

    SEP Manager Client  Communication is on port 8014 

    if using GUP port is 2967

    we were using LUA to Distribution Center and was using port 21 FTP.

    and clients uses the 80 (HTTP) if it is downloaded directly from the symantec live update servers